| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Original HTTPS Page] |
Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.
You must be logged in to block users.
Contact GitHub support about this userβs behavior. Learn more about reporting abuse.
Report abuseSecurity Engineer by profession, Hacker by passion
I've been breaking things professionally for almost a decade as a Product/Application Security Engineer, but I've been tinkering with security for 20 years (yes, I started young π).
π‘οΈ Orgsec Guide - A comprehensive checklist and guide for organizations looking to implement a robust cybersecurity program
π₯ XXExploiter - Tool to help exploit XXE vulnerabilities. Generates XML payloads and automatically starts a server to serve DTD's or do data exfiltration
πͺ VSCode Swissknife - Scriptable VSCode extension to generate or manipulate data. Stop pasting sensitive data in webpages
πΌ WatchTower - VSCode extension that scans your workspace for malicious configurations, invisible Unicode threats, and dangerous IDE attack vectors β fully local, fully open source.
π Warden - Enforce file-based policies on managed machines by automatically detecting and correcting config files that drift from approved values.
π How To Test Secrets - A visual, interactive cheat-sheet for testing whether leaked API keys and secrets are still valid β pick a service and get a ready-to-run command.
π MirageVM - Javascript virtual machine for code obfuscation. It can be used to protect sensitive client side logic with custom bytecode. Supports all Javascript features through a custom low level language (Private project)
π« coup-sheet - If you like the game as much as me, you'll find this sheet super helpful
π DamnVulnerableCryptoApp - An app with intentionally insecure crypto implementations. Perfect for testing/exploiting weak cryptography and learning crypto without diving deep into the math
#οΈβ£ hash-identifier-js - Port from hash-identifier to javascript
Daily drivers:
JavaScript/TypeScript β’ Node.js β’ Express β’ React
Python β’ Django β’ Flask
The old friends (a bit rusty, but we go way back):
Java β’ Spring β’ Ruby/Rails β’ C# β’ PHP
π€ Occasional speaker at security conferences
π Currently trying to write a fictional book (stay tuned!)
βοΈ Sharing knowledge on TheSecurityVault
An app with really insecure crypto. To be used to see/test/exploit weak cryptographic implementations as well as to learn a little bit more about crypto, without the need to dive deep into the mathβ¦
Simple tool to test for TIming Attacks
TypeScript
Combines supplied words and generates all possible combinatios/permutations. Can also hash wordlist entries to look for an hash match
TypeScript 2
Scriptable VSCode extension to generate or manipulate data. Stop pasting sensitive data in webpages.
| Back | FazBrowse Home | New Git URL |